Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=cnb.today
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
May 28, 2026
Valid Until
August 26, 2026
60 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
55:F6:32:FE:43:63:00:23:A7:76:DD:A1:A4:21:F1:C9:BC:C7:7C:D7:C2:86:59:8C:C9:AD:8A:5C:B2:67:8F:08
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
konsulty.tech
*.konsulty.tech
*.8cfbe3e3-bbba-464e-a10d-68fc42b99706.konsulty.tech
*.aesjuat.konsulty.tech
*.api.konsulty.tech
*.uat.konsulty.tech
*.usflldev.konsulty.tech
*.vzxyhqwg.konsulty.tech
asbgroupofcompanys.com
*.asbgroupofcompanys.com
asrinyaman.com
*.asrinyaman.com
*.50.cash-real.xyz
cash-real.xyz
*.cash-real.xyz
*.25a75.celeb-hot-gossip.com
celeb-hot-gossip.com
*.celeb-hot-gossip.com
*.mjnvpn5nyi.celeb-hot-gossip.com
cnb.today
*.cnb.today
*.test.cnb.today
*.billing.dailyplanner.com.au
dailyplanner.com.au
*.dailyplanner.com.au
*.dev2.dailyplanner.com.au
*.magento.dailyplanner.com.au
*.checkout.estoque.org
*.compra.estoque.org
estoque.org
*.estoque.org
*.random.estoque.org
*.rastreamento.estoque.org
*.seguro.estoque.org
*.sitemap.estoque.org
*.sitemaps.estoque.org
*.www.estoque.org
*.app.even.it
*.art.even.it
*.backend.even.it
*.dashboard.even.it
*.demo.even.it
*.dev.even.it
*.else.even.it
even.it
*.even.it
*.hostmaster.even.it
*.i.even.it
*.metrics.even.it
*.pay.even.it
*.redash.even.it
*.reports.even.it
*.sixe.even.it
*.sixel.even.it
*.staging.even.it
*.superset.even.it
*.ttaruutful.even.it
infosdirecte.com
*.infosdirecte.com
*.ww38.infosdirecte.com
istikharaishaaq.com
*.istikharaishaaq.com
*.ww38.istikharaishaaq.com
kboo36.icu
*.kboo36.icu
*.ww25.kboo36.icu
kjcam.loan
*.kjcam.loan
*.demo.mypennmedicine.cfd
mypennmedicine.cfd
*.mypennmedicine.cfd
*.cpanel.threepointsolutions.ca
*.mta-sts.threepointsolutions.ca
threepointsolutions.ca
*.threepointsolutions.ca
*.webmail.threepointsolutions.ca
*.ww7.threepointsolutions.ca
*.ns0.touristattraction.com.au
touristattraction.com.au
*.touristattraction.com.au
*.dev.tranquilessence.info
tranquilessence.info
*.tranquilessence.info
*.api.typelikeai.com
*.assets.typelikeai.com
*.members.typelikeai.com
*.oit6de.typelikeai.com
typelikeai.com
*.typelikeai.com
*.www.typelikeai.com
Other domains in certificate